2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-41988HIGH7.5An information disclosure vulnerability exists in the OpenImageIO::decode_iptc_iim() functionality of OpenImageIO Projec...
CVE-2022-41981HIGH8.1A stack-based buffer overflow vulnerability exists in the TGA file format parser of OpenImageIO v2.3.19.0. A specially-c...
CVE-2022-22184HIGH7.5An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos O...
CVE-2022-3805HIGH7.5The Jeg Elementor Kit plugin for WordPress is vulnerable to authorization bypass in various functions used to update the...
CVE-2022-46885HIGH8.8Mozilla developers Timothy Nikkel, Ashley Hale, and the Mozilla Fuzzing Team reported memory safety bugs present in Fire...
CVE-2022-46883HIGH8.8Mozilla developers Gabriele Svelto, Yulia Startsev, Andrew McCreight and the Mozilla Fuzzing Team reported memory safety...
CVE-2022-46881HIGH8.8An optimization in WebGL was incorrect in some cases, and could have led to memory corruption and a potentially exploita...
CVE-2022-46879HIGH8.8Mozilla developers and community members Lukas Bernhard, Gabriele Svelto, Randell Jesup, and the Mozilla Fuzzing Team re...
CVE-2022-46878HIGH8.8Mozilla developers Randell Jesup, Valentin Gosu, Olli Pettay, and the Mozilla Fuzzing Team reported memory safety bugs p...
CVE-2022-46874HIGH8.8A file with a long filename could have had its filename truncated to remove the valid extension, leaving a malicious ext...
CVE-2022-46873HIGH8.8Because Firefox did not implement the <code>unsafe-hashes</code> CSP directive, an attacker who was able to inject marku...
CVE-2022-46872HIGH8.6An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipb...
CVE-2022-46871HIGH8.8An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited. This vulnerability af...
CVE-2022-45421HIGH8.8Mozilla developers Andrew McCreight and Gabriele Svelto reported memory safety bugs present in Thunderbird 102.4. Some o...
CVE-2022-45415HIGH7.8When downloading an HTML file, if the title of the page was formatted as a filename with a malicious extension, Firefox ...
CVE-2022-45414HIGH8.1If a Thunderbird user quoted from an HTML email, for example by replying to the email, and the email contained either a ...
CVE-2022-45412HIGH8.8When resolving a symlink such as <code>file:///proc/self/fd/1</code>, an error message may be produced where the symlink...
CVE-2022-45409HIGH8.8The garbage collector could have been aborted in several states and zones and <code>GCRuntime::finishCollection</code> m...
CVE-2022-45407HIGH7.5If an attacker loaded a font using <code>FontFace()</code> on a background worker, a use-after-free could have occurred,...
CVE-2022-42932HIGH8.8Mozilla developers Ashley Hale and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 105 and Firef...
CVE-2022-42930HIGH7.1If two Workers were simultaneously initializing their CacheStorage, a data race could have occurred in the `ThirdPartyUt...
CVE-2022-42928HIGH8.8Certain types of allocations were missing annotations that, if the Garbage Collector was in a specific state, could have...
CVE-2022-42927HIGH8.1A same-origin policy violation could have allowed the theft of cross-origin URL entries, leaking the result of a redirec...
CVE-2022-40962HIGH8.8Mozilla developers Nika Layzell, Timothy Nikkel, Sebastian Hengst, Andreas Pehrson, and the Mozilla Fuzzing Team reporte...
CVE-2022-3155HIGH7.8When saving or opening an email attachment on macOS, Thunderbird did not set attribute com.apple.quarantine on the recei...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now